US 12,261,875 B2
Systems and methods for automated risk-based network security focus
Rajiv Sreedhar, Sunnyvale, CA (US); Manuel Nedbal, Steyr (AT); Manoj Ahluwalia, San Jose, CA (US); Latha Krishnamurthi, San Jose, CA (US); Rajeshwari Rao, San Jose, CA (US); Damodar K. Hegde, Santa Clara, CA (US); Jitendra B. Gaitonde, Cupertino, CA (US); Dave Karp, Oklahoma City, OK (US); and Mark Lubeck, San Jose, CA (US)
Assigned to Fortinet, Inc., Sunnyvale, CA (US)
Filed by Fortinet, Inc., Sunnyvale, CA (US)
Filed on Mar. 29, 2024, as Appl. No. 18/622,676.
Application 18/622,676 is a continuation of application No. 17/408,730, filed on Aug. 23, 2021, granted, now 12,081,577.
Prior Publication US 2024/0380774 A1, Nov. 14, 2024
This patent is subject to a terminal disclaimer.
Int. Cl. H04L 9/40 (2022.01)
CPC H04L 63/1433 (2013.01) 16 Claims
OG exemplary drawing
 
1. A method for securing network access using automatically generated network focus, the method comprising:
accessing, by a processing resource, at least a first risk score for a first application and a second risk score for a second application, wherein the first risk score indicates a higher risk than the second risk score;
selecting, by the processing resource, the first application based in part on the first risk score indicating a higher risk than the second risk score;
scoring, by the processing resource, the first application to yield the first risk score by:
scoring at least a first application tier of the first application to yield a first tier risk score and a second application tier of the first application to yield a second tier risk score, and
generating the first risk score based at least in part on the first tier risk score, wherein scoring the first application further comprises:
scoring at least a first workload of the first application tier to yield a first workload risk score and a second workload of the first tier to yield a second workload risk score, and
generating the first tier risk score based at least in part on the first workload risk score, wherein the first workload risk score indicates a higher risk than the second workload risk score, and the generating of the first tier risk score based at least in part on the first workload risk score includes selecting the first workload risk score; and
securing, by the processing resource, a network from a focus of the first application.